CLAIM AMENDMENTS 



Claim Amendment Summary 
Claims pending 

• Before this Amendment: Claims 1-4, 6, 10, 19, 21, and 22. 

• After this Amendment: Claims 1-4, 6, 10, 19, 21, 22, and 
36-60. 

Previously Canceled claims: 5, 7-9, 11-18, 20, and 23-35 
Amended claims: 1 
New claims: 36-60 



Claims: 

1. (Currently Amended) A method, comprising: 
a first electronic device deriving a digital signature and associating 
the digital signature with a web page , wherein on l y i f t he web page 
includes code to invoke a control objec t, and wherein the web page does 
not include the control object : and 

subsequent to associating the digital signature with the web page, 
the first electronic device delivering the web page to a second electronic 
device capable of authenticating the digital signature such that the second 
electronic device executes at least a portion of the web page in response 
to authenticating the digital signature. 
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2. (Original) The method as recited in claim 1, wherein the 
associating further comprises attaching the digital signature to the web 
page. 

3. (Previously Presented) The method as recited in claim 1, 
further comprising: 

in an event that the web page does not include code to invoke the 
control object, the first electronic device delivering the web page without a 
digital signature. 

4. (Previously Presented) The method as recited in claim 1, 
wherein the web page includes a confirmation module that is used by the 
second electronic device to authenticate the digital signature. 

5. (Cancelled) 

6. (Original) The method as recited in claim 1, wherein the 
web page is generated in an active server page (ASP) environment. 

7 - 9. (Cancelled) 

10. (Previously presented) The method as recited in claim 1, 
further comprising designating one or more sources of a web page 
authorized to invoke the control object. 
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11. - 18. (Cancelled) 



19. (Previously presented) The method as recited in claim 1, 
wherein the control object includes a confirmation module configured to 
authenticate the digital signature. 

20. (Cancelled) 

21. (Previously presented) The method as recited in claim 19, 
wherein the confirmation module is further configured to determine if the 
web page comes from a source that is authorized to invoke the control 
object and the control object is invoked only if the source of the web page 
is authorized to invoke the control object. 

22. (Previously presented) The method as recited in claim 19, 
wherein the confirmation module is called by the web page prior to the 
web page invoking the control object. 

23. - 35. (Cancelled) 
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36. (New) A method, comprising; 

a first electronic device receiving from a second electronic device, a 
request to download a web page; and 

in response to receiving the request, the first electronic device: 

determining whether the web page includes code to invoke a 
control object; 

in an event that the web page includes code to invoke a 
control object, associating a web page digital signature with the web 
page; and 

delivering the web page to the second electronic device, 
wherein the second electronic device is capable of authenticating the 
web page digital signature such that the second electronic device 
executes at least a portion of the web page in response to 
authenticating the web page digital signature. 

37. (New) The method as recited in claim 36, wherein a control 
object digital signature is associated with the control object. 

38. (New) The method as recited in claim 36, wherein associating 
the web page digital signature with the web page further comprises 
deriving the web page digital signature. 
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39. (New) The method as recited in claim 36, further comprising: 
in an event that the web page does not include code to invoke the 

control object: 

in response to receiving the request, the first electronic 
device delivering the web page to the second electronic device 
without the web page digital signature. 

40. (New) The method as recited in claim 36, wherein the web 
page includes a confirmation module that is used by the second electronic 
device to authenticate the web page digital signature. 

41. (New) The method as recited in claim 36, wherein the control 
object includes a confirmation module configured to authenticate the web 
page digital signature. 

42. (New) The method as recited in claim 36, further comprising a 
confirmation module determining whether a source of the web page is 
authorized to invoke the control object such that the web page is 
prevented from invoking the control object if the source of the web page 
is not authorized to invoke the control object. 

43. (New) The method as recited in claim 41, further comprising 
the second electronic device invoking the confirmation module prior to 
executing the code to invoke the control object. 
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44. (New) A method, comprising: 

a first electronic device determining whether a web page includes 
code to invoke a control object, wherein the control object does not have 
an associated digital signature; and 

based on a determination that the web page includes code to invoke 
the control object: 

the first electronic device associating a digital signature with 
the web page; and 

subsequent to associating the digital signature with the web 
page, the first electronic device delivering the web page to a second 
electronic device capable of authenticating the digital signature such 
that the second electronic device executes the code to invoke the 
control object in response to authenticating the digital signature, 
and such that the second electronic device prevents execution of the 
code to invoke the control object in response to failing to 
authenticate the digital signature. 

45. (New) The method as recited in claim 44, wherein associating 
the digital signature with the web page further comprises deriving the 
digital signature. 
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46. (New) The method as recited in claim 44, further comprising: 
based on a determination that the web page does not include code 

to invoke the control object: 

the first electronic device delivering the web page to the 
second electronic device without the digital signature. 

47. (New) The method as recited in claim 44, wherein the web 
page includes a confirmation module that is used by the second electronic 
device to authenticate the digital signature. 

48. (New) The method as recited in claim 44, wherein the control 
object includes a confirmation module configured to authenticate the 
digital signature. 

49. (New) The method as recited in claim 44, further comprising a 
confirmation module determining whether a source of the web page is 
authorized to invoke the control object such that the web page is 
prevented from invoking the control object if the source of the web page 
is not authorized to invoke the control object. 

50. (New) The method as recited in claim 49, further comprising 
the second electronic device invoking the confirmation module prior to 
executing the code to invoke the control object. 



Serial No.: 09/650,712 _ 

Atty Docket No.: MS1-0579US "9" lee&haVeS The Business of IP™ 

Atty/Agent: Kayla D. Brant mwieeha eswm 509324925G 

Response to Non-Final Office Action dated 12/22/2006 wmv ' " ayes 



51. (New) A method, comprising: 

a first electronic device determining whether a web page includes 
code to invoke a control object, wherein a first digital signature is 
associated with the control object; 

based on a determination that the web page includes code to invoke 
the control object, the first electronic device associating a second digital 
signature with the web page; and 

subsequent to associating the second digital signature with the web 
page, the first electronic device delivering the web page to a second 
electronic device capable of authenticating the second digital signature 
such that the second electronic device executes the code to invoke the 
control object in response to authenticating the second digital signature, 
and such that the second electronic device prevents execution of the code 
to invoke the control object in response to failing to authenticate the 
second digital signature. 

52. (New) The method as recited in claim 51, wherein associating 
the second digital signature with the web page further comprises deriving 
the second digital signature. 
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53. (New) The method as recited in claim 51, further comprising: 
based on a determination that the web page does not include code 

to invoke the control object: 

the first electronic device delivering the web page to the 
second electronic device without the second digital signature. 

54. (New) The method as recited in claim 51, wherein the web 
page includes a confirmation module that is used by the second electronic 
device to authenticate the second digital signature. 

55. (New) The method as recited in claim 51, wherein the control 
object includes a confirmation module configured to authenticate the 
second digital signature. 

56. (New) The method as recited in claim 51, further comprising a 
confirmation module determining whether a source of the web page is 
authorized to invoke the control object such that the web page is 
prevented from invoking the control object if the source of the web page 
is not authorized to invoke the control object. 

57. (New) The method as recited in claim 56, further comprising 
the second electronic device invoking the confirmation module prior to 
executing the code to invoke the control object. 
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58. (New) One or more tangible computer-readable media 
comprising computer-executable instructions that, when executed, direct 
a first computing device to: 

determine whether a web page includes code to invoke a control 
object, wherein the control object does not have an associated digital 
signature; and 

based on a determination that the web page includes code to invoke 
the control object, associate a digital signature with the web page, 
wherein the digital signature is not directly associated with the control 
object; and 

deliver the web page to a second computing device capable of 
authenticating the digital signature such that the second computing device 
executes the code to invoke the control object in response to 
authenticating the digital signature, and such that the second computing 
device prevents execution of the code to invoke the control object in 
response to failing to authenticate the digital signature. 
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59. (New) One or more tangible computer-readable media 
comprising computer-executable instructions that, when executed, direct a 
first computing device to: 

determine whether a web page includes code to invoke a control 
object, wherein a first digital signature is associated with the control 
object; 

based on a determination that the web page includes code to invoke 
the control object, associate a second digital signature with the web page; 
and 

deliver the web page to a second computing device capable of 
authenticating the second digital signature such that the second 
computing device executes the code to invoke the control object in 
response to authenticating the second digital signature, and such that the 
second computing device prevents execution of the code to invoke the 
control object in response to failing to authenticate the second digital 
signature. 
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60. (New) A system comprising: 

a page generator to generate a web page, wherein the web page 
includes a control object; 

a digital signature module to: 

determine whether the web page includes a script to invoke 
the control object; 

derive a digital signature from the web page; 

based on a determination that the web page includes a script 
to invoke the control object, attach the digital signature to the web 
page such that the digital signature is not directly associated with 
the control object; and 

a web page delivery module to deliver the web page to an electronic 
device. 
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